Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Port Forwarding Camera DVR ports behind router

    NAT
    3
    5
    647
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      tejas LAYER 8
      last edited by tejas

      I had a basic setup of PF Sense 2.3.5 with 2 ethernet port, one LAN and one WAN. Problem is with the port forwarding, and there is a confusion.

      1. Since the outside Internet is connected first with the ISP supplied router, and after that I have setup the PFSense Firewall. Before the installation of the firewall, the router was port forwarded the wan ip, targeting to the desired internal IP. I have changed the both the IPs of WAN and LAN aka 192.168.6.X and 192.168.5.X series.

      2. So the question is what should now I do, whether I port forward the router pointing to the PFsense wan IP, and from that again port forward firewall to the LAN internal ip. Or something else. I donnot want to disturb the setting such as setting the isp supplied router in bridge mode.

      1 Reply Last reply Reply Quote 0
      • chpalmerC
        chpalmer
        last edited by

        Bridge mode is the best and easiest solution in most minds.. If you do not then you have to port forward your first "ISP" router to your pfsense router.

        Remember that most here are volunteers and do this on their own free time. No one is obligated to help anyone else. A simple "Bump" of your original post is usually best over a complaint of no help. :)

        Triggering snowflakes one by one..
        Intel(R) Core(TM) i5-4590T CPU @ 2.00GHz on an M400 WG box.

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          A VPN is almost always a better option than forwarding ports in to devices like that.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          T 1 Reply Last reply Reply Quote 0
          • T
            tejas LAYER 8 @Derelict
            last edited by

            @derelict
            Sorry for such late reply, was busy in some work.

            1. Tried out port forwarding the ISP router to the PFSense, and then port forwarding the PFSense ports to the required destination. But some how fails and could not understand the reason, nor I am able to debug. May be I am doing some mistake but what is the question??

            2. We have 2 DVR device, one the newest have the feature of setting the clients with the simple QR code scan, and works on P2P, strangely, it works flawlessly, and PFSense didn't interfere any connection. The other one is the old one, with no such feature. And that's the problem, since our company GM is getting angry over it.

            3. Will look at the VPN method and I think it is much more secure one also.

            1 Reply Last reply Reply Quote 0
            • DerelictD
              Derelict LAYER 8 Netgate
              last edited by

              If your GM wants this stuff to work he should:

              1. Get you something instead of some cockamamie double-NAT setup.
              2. Insist you use a VPN since it is the correct choice.

              Else we will need to see the upstream configuration of the ISP router and probably the port forward that works and the one that doesn't.

              PFSense didn't interfere any connection.

              How do you know it's pfSense interfering and not something else that's still wrong?

              Chattanooga, Tennessee, USA
              A comprehensive network diagram is worth 10,000 words and 15 conference calls.
              DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
              Do Not Chat For Help! NO_WAN_EGRESS(TM)

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.